home.social

#cvss100 — Public Fediverse posts

Live and recent posts from across the Fediverse tagged #cvss100, aggregated by home.social.

  1. Google's Gemini CLI Fix Sparks CI/CD Pipeline Disruptions

    A recent patch for Google's Gemini CLI has sparked disruptions in CI/CD pipelines, ironically caused by a critical infrastructural flaw - not an AI quirk - that allowed remote code execution due to over-permissive workspace trust in headless mode. The fix, while swift, may trip automated pipelines that relied on the old settings.

    osintsights.com/googles-gemini

    #GeminiCli #CicdPipeline #RemoteCodeExecution #Cvss100 #Google

  2. Researchers Uncover 38 Flaws in OpenEMR Software

    A security firm just uncovered 38 vulnerabilities in widely-used OpenEMR software, including two critical zero-day flaws that could have put sensitive healthcare data at risk - but thankfully, they've already been patched. The flaws were discovered using AI-driven analysis and have been fixed, safeguarding the data of around 100,000 healthcare providers worldwide.

    osintsights.com/researchers-un

    #Openemr #Healthcare #ZeroDay #Cvss100 #Cve202624898